https://bugzilla.redhat.com/show_bug.cgi?id=1821315 Bug 1821315 depends on bug 1821316, which changed state.
Bug 1821316 Summary: CVE-2020-11113 jackson-databind: jackson-databind: mishandles the interaction between serialization gadgets and typing related to org.apache.openjpa.ee.WASRegistryManagedRuntime which could result in remote command execution [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1821316
What |Removed |Added ---------------------------------------------------------------------------- Status|NEW |CLOSED Resolution|--- |CURRENTRELEASE